QUESTION 33
Which two statements about the capabilities of all Cisco AnyConnect 3.0 Secure Mobility Client for Windows are true? (Choose two.)

A. It supports always-on connectivity by automatically establishing a VPN connection as needed.
It multiple VPN gateways exist, load sharing occurs in a round-robin fashion.
B. The order of policy enforcement is as follows; dynamic access policy, use attributes tunnel group, group policy attributes.
C. It supports session persistence after hibernation or standby.
D. Trusted Network Detection allows the connection to be established without any user intervention (authentication), if the client is located inside the office.
E. It is exclusively configured by central policies; no local configuration is possible.

A. MACsec does not work between any MACsec-capable supplicant and authenticator.
B. MACsec provides Layer 2 hop-by-hop encryption, based on the 802.1AE standard.
C. 802.1X protection includes the CMD field, which is used to carry the security group tag value.
D. Cisco AnyConnect Release 3.0 supports both roles: supplicant and authenticator.